[CVE-2018-1000115] memcached: restrict to TCP

Bug #1755063 reported by zhongshengping
6
This bug affects 1 person
Affects Status Importance Assigned to Milestone
OpenStack-Ansible
Fix Released
Undecided
zhongshengping

Bug Description

https://access.redhat.com/security/cve/cve-2018-1000115

Restrict Memcached to only work on TCP.
The configuration only binds memcached on localhost but in case it
changes, we'll prevent DDoS amplification attacks.

CVE References

zhongshengping (chdzsp)
Changed in openstack-ansible:
assignee: nobody → zhongshengping (chdzsp)
Revision history for this message
OpenStack Infra (hudson-openstack) wrote : Fix proposed to openstack-ansible-memcached_server (master)

Fix proposed to branch: master
Review: https://review.openstack.org/551823

Changed in openstack-ansible:
status: New → In Progress
Revision history for this message
OpenStack Infra (hudson-openstack) wrote : Fix merged to openstack-ansible-memcached_server (master)

Reviewed: https://review.openstack.org/551823
Committed: https://git.openstack.org/cgit/openstack/openstack-ansible-memcached_server/commit/?id=60adcff1eaf8c06c2710a8f6a283df7b45d8d688
Submitter: Zuul
Branch: master

commit 60adcff1eaf8c06c2710a8f6a283df7b45d8d688
Author: ZhongShengping <chdzsp@163.com>
Date: Mon Mar 12 09:51:13 2018 +0800

    [CVE-2018-1000115] memcached: restrict to TCP

    https://access.redhat.com/security/cve/cve-2018-1000115

    Restrict Memcached to only work on TCP.
    The configuration only binds memcached on localhost but in case it
    changes, we'll prevent DDoS amplification attacks.

    Change-Id: Ifc16c8a3229f5fc0f3651e714627b526e4338cfe
    Closes-Bug: #1755063

Changed in openstack-ansible:
status: In Progress → Fix Released
Revision history for this message
OpenStack Infra (hudson-openstack) wrote : Fix included in openstack/openstack-ansible-memcached_server 18.0.0.0b1

This issue was fixed in the openstack/openstack-ansible-memcached_server 18.0.0.0b1 development milestone.

To post a comment you must log in.
This report contains Public information  
Everyone can see this information.

Other bug subscribers

Remote bug watches

Bug watches keep track of this bug in other bug trackers.